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DETAILED ACTION 

to 

1. Claims 1-10 have been examined and are pending. 

Claim Rejections - 35 USC §102 

The following is a quotation of the appropriate paragraphs of 35 U.S.C. 102 
that form the basis for the rejections under this section made in this Office 
action: 

A person shall be entitled to a patent unless - 

(e) the invention was described in ( 1) an application for patent, published under section 
122(b), by another filed in the United States before the invention by the applicant for patent 
or (2) a patent granted on sin application for patent by another filed in the United States 
before the invention by the applicant for patent, except that an international application 
filed under the treaty defined in section 351(a) shall have the effects for purposes of this 
subsection of an application filed in the United States only if the international application 
designated the United States and was published under Article 21(2) of such treaty in the 
English language. 

2. Claims 1-10 are rejected under 35 U.S.C. 102(e) as being anticipated 
by Aiken, et al. (US 7,089,335). 

As per claim : 

4 

Aiken, et al. teaches an authentication mechanism, for a network where 
a spanning tree protocol is performed comprising a plurality of bridges, a 
plurality of layers, a plurality of switches, and a plurality of ports, the 
authentication mechanism comprising: (col.5, lines 51-52 and col.8, lines 
42-45) 
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a plurality of bridge protocol data units; (col. 21, lines 25-31 and col.25, 
lines 1-9) 

a permit list; and (col. 13, lines 48-65 and col. 14, lines 63-67) 
a plurality of authentication rules, (col.31, lines 24-45 and 51-65 and 
col.36, lines 49-53 and col.37, lines 2-16) 

As per claim 2: See col.3, lines 40-42; discussing the authentication 
mechanism as recited in claim 1, wherein the bridge protocol data unit 
comprises: a root identifier field; and a bridge identifier field. 
As per claim 3: See col. 13, lines 48-65 and col. 14, lines 63-67; 

discussing the authentication mechanism as recited in claim 1, wherein the 
permit list comprises a plurality of bridge addresses allowed in the bridge 
protocol data units that are received. 

As per claim 4: Aiken discloses the authentication mechanism as recited in 
claim 1, wherein the authentication rules comprise: 

if the bridge protocol data unit that is received uses the bridge address of 
the switch, the bridge protocol data unit is permitted; (col. 20, lines 24-37 and 
col.26, lines 10-22) 

if the bridge address of the bridge identifier does not match the bridge 
addresses in the permit list, the bridge protocol data unit that is received is 
ignored; and (col.21, lines 30-33) 

if the bridge address of the root identifier does not match the bridge . 
addresses in the permit list, the bridge protocol data unit that is received is 
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ignored, (col. 12, lines 5-15 and col. 14, lines 47-49) 

As per claim 5: See col.5, lines 64-67; discussing the authentication 

mechanism as recited in claim 1, wherein the port further comprises a state 

machine. 

As per claim 6: Aiken discloses the authentication mechanism as recited in 
claim 4, wherein when the port receiving the bridge protocol data unit that fails 
the bridge address permit list, the authentication rules further comprises: 

the state machine of the spanning tree protocol port being reset; (col. 16, 
line 66 and col. 17, lines 61-62) 

the bridge protocol data units that pass the permit list being processed; 

(col.20, lines 24-37 and col.26, lines 10-22) 

an operEdge variable being set to false if the port is an edge port; and 
(col.31, lines 10-15) 

resuming when none of the bridge point data units failing the permit list 
have been received for a period, (col. 12, lines 20-34 and col. 16, lines 29-32) 
As per claim 7: See col.9, lines 36-37 and col. 12, lines 20-34; discussing 
the authentication mechanism as recited in claim 6, wherein the period is in 
the order of 'tens of seconds. 

As per claim 8: See col.31, lines 24-45 and 51-65 and col.36, lines 49-53 
and col.37, lines 2-16; discussing the authentication mechanism as recited in 
claim 6, wherein the authentication rules are applicable when the spanning 
tree protocol is enabled on the switch. 
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As per claim 9: See col.3, lines 34-43 and col.20, lines 24-37; discussing 
the authentication mechanism as recited in claim 1, wherein the bridge 
address of the bridge potentially being a root bridge is specified in the permit 
list, for triggering a root identifier checking. 

As per claim 10: See col. 13, lines 48-65 and col. 14, lines 63-67; 

discussing the authentication mechanism as recited in claim 1, wherein all the 
switches in a bridge domain that is trusted are specified in the permit list. 



Conclusion 

Any inquiry concerning this communication or earlier communications 
from the examiner should be directed to LEYNNA T. HA whose telephone 
number is (571) 272-3851. The examiner can normally be reached on Monday 
- Thursday (7:00 - 5:00PM). 

If attempts to reach the examiner by telephone are unsuccessful, the 

■ 

examiner's supervisor, Kim Vu can be reached on (571) 272-3859. The fax 
phone number for the organization where this application or proceeding is 
assigned is 571-273-8300. 
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Information regarding the status of an application may be obtained from 
the Patent Application Information Retrieval (PAIR) system. Status information 
for published applications may be obtained from either Private PAIR or Public 
PAIR. Status information for unpublished applications is available through 
Private PAIR only. For more information about the PAIR system, see 
http://pair-direct.uspto.gov. Should you have questions on access to the 
Private PAIR system, contact the Electronic Business Center (EBC) at 866-217- 
9197 (toll-free). If you would like assistance from a USPTO Customer Service 
Representative or access to the automated information system, call 800-786- 
9199 (IN USA OR CANADA) or 571-272-1000. 



LHa 




TECHNOLOGY CENTER 2100 



